A distributed ensemble design based intrusion detection system using fog computing to protect the internet of things networks

被引:87
|
作者
Kumar, Prabhat [1 ]
Gupta, Govind P. [1 ]
Tripathi, Rakesh [1 ]
机构
[1] Natl Inst Technol, Dept Informat Technol, Raipur 492010, CG, India
关键词
Intrusion detection system; Anomaly detection; Ensemble learning; Fog computing; Internet of things (IoT); Feature selection; SECURITY;
D O I
10.1007/s12652-020-02696-3
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
With the development of internet of things (IoT), capabilities of computing, networking infrastructure, storage of data and management have come very close to the edge of networks. This has accelerated the necessity of Fog computing paradigm. Due to availability of Internet, most of our business operations are integrated with IoT platform. Fog computing has enhanced the strategy of collecting and processing, huge amount of data. On the other hand, attacks and malicious activities has adverse consequences on the development of IoT, Fog, and cloud computing. This has led to development of many security models using fog computing to protect IoT network. Therefore, for dynamic and highly scalable IoT environment, a distributed architecture based intrusion detection system (IDS) is required that can distribute the existing centralized computing to local fog nodes and can efficiently detect modern IoT attacks. This paper proposes a novel distributed ensemble design based IDS using Fog computing, which combines k-nearest neighbors, XGBoost, and Gaussian naive Bayes as first-level individual learners. At second-level, the prediction results obtained from first level is used by Random Forest for final classification. Most of the existing proposals are tested using KDD99 or NSL-KDD dataset. However, these datasets are obsolete and lack modern IoT-based attacks. In this paper, UNSW-NB15 and actual IoT-based dataset namely, DS2OS are used for verifying the effectiveness of the proposed system. The experimental result revealed that the proposed distributed IDS with UNSW-NB15 can achieve higher detection rate upto 71.18% for Backdoor, 68.98% for Analysis, 92.25% for Reconnaissance and 85.42% for DoS attacks. Similarly, with DS2OS dataset, detection rate is upto 99.99% for most of the attack vectors.
引用
收藏
页码:9555 / 9572
页数:18
相关论文
共 50 条
  • [31] A Softwarized Intrusion Detection System for the RPL-based Internet of Things networks
    Violettas, George
    Simoglou, George
    Petridou, Sophia
    Mamatas, Lefteris
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2021, 125 : 698 - 714
  • [32] Intrusion detection using multi-objective evolutionary convolutional neural network for Internet of Things in Fog computing
    Chen, Yi
    Lin, Qiuzhen
    Wei, Wenhong
    Ji, Junkai
    Wong, Ka-Chun
    Coello Coello, Carlos A.
    KNOWLEDGE-BASED SYSTEMS, 2022, 244
  • [33] Internet of things based smart city design using fog computing and fuzzy logic
    Bhardwaj, Kartik Krishna
    Banyal, Siddhant
    Sharma, Deepak Kumar
    Al-Numay, Waleed
    SUSTAINABLE CITIES AND SOCIETY, 2022, 79
  • [34] AntibIoTic: The Fog-enhanced distributed security system to protect the (legacy) Internet of Things
    De Donno, Michele
    Fafoutis, Xenofon
    Dragoni, Nicola
    JOURNAL OF COMPUTER SECURITY, 2022, 30 (05) : 689 - 725
  • [35] A Novel Intrusion Detection System Architecture for Internet of Things Networks
    Santos, Leonel
    Goncalves, Ramiro
    Rabadao, Carlos
    PROCEEDINGS OF THE 18TH EUROPEAN CONFERENCE ON CYBER WARFARE AND SECURITY (ECCWS 2019), 2019, : 428 - 435
  • [36] Envisioning Internet of Things using Fog Computing
    Khan, Urooj Yousuf
    Soomro, Tariq Rahim
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2018, 9 (01) : 441 - 448
  • [37] An Adaptive Deep-Ensemble Anomaly-Based Intrusion Detection System for the Internet of Things
    Albulayhi, Khalid
    Sheldon, Frederick T.
    2021 IEEE WORLD AI IOT CONGRESS (AIIOT), 2021, : 187 - 196
  • [38] Design of Intrusion Detection System for Wormhole Attack Detection in Internet of Things
    Deshmukh-Bhosale, Snehal
    Sonavane, S. S.
    ADVANCED COMPUTING AND INTELLIGENT ENGINEERING, 2020, 1082 : 513 - 523
  • [39] Intrusion Detection in Internet of Things using Convolutional Neural Networks
    Kodys, Martin
    Lu, Zhi
    Fok, Kar Wai
    Thing, Vrizlynn L. L.
    2021 18TH INTERNATIONAL CONFERENCE ON PRIVACY, SECURITY AND TRUST (PST), 2021,
  • [40] Fog Computing Security Architecture for the Internet of Things using Blockchain-based Social Networks
    Zhu, Xiaoyang
    Badr, Youakim
    IEEE 2018 INTERNATIONAL CONGRESS ON CYBERMATICS / 2018 IEEE CONFERENCES ON INTERNET OF THINGS, GREEN COMPUTING AND COMMUNICATIONS, CYBER, PHYSICAL AND SOCIAL COMPUTING, SMART DATA, BLOCKCHAIN, COMPUTER AND INFORMATION TECHNOLOGY, 2018, : 1361 - 1366